CVE-2023-28900
EUVD-2023-3252018.01.2024, 17:15
The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing to obtain nicknames and other user identifiers of Skoda Connect service users by specifying an arbitrary vehicle VIN number.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| skoda-auto | skoda_connect | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration